The IBM Process Federation Server 18.0.0.1, 18.0.0.2, 19.0.0.1, 19.0.0.2, and 19.0.0.3 Global Teams REST API does not properly shutdown the thread pools that it creates to retrieve Global Teams information from the federated systems. As a consequence, the Java Virtual Machine can't recover the memory used by those thread pools, which leads to an OutOfMemory exception when the Process Federation Server Global Teams REST API is used extensively. IBM X-Force ID: 177596.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/6125403 | Vendor Advisory |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/177596 | VDB Entry Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-04-02 15:15
Updated : 2021-07-21 11:39
NVD link : CVE-2020-4325
Mitre link : CVE-2020-4325
JSON object : View
Products Affected
ibm
- process_federation_server
- cloud_pak_for_automation
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
